Revision Date: | 2022-06-30 | Version: | 1 |
Title: | CVE-2018-0487 |
Description: |
ARM mbed TLS before 1.3.22, before 2.1.10, and before 2.7.0 allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow) via a crafted certificate chain that is mishandled during RSASSA-PSS signature verification within a TLS or DTLS session.
|
Family: | unix | Class: | vulnerability |
Status: | | Reference(s): | CVE-2018-0487 openSUSE-SU-2018:0488-1 openSUSE-SU-2018:0491-1 Mitre CVE-2018-0487 SUSE CVE-2018-0487 openSUSE-SU-2018:0488-1 openSUSE-SU-2018:0491-1
|
Platform(s): | openSUSE Leap 42.3 openSUSE Tumbleweed SUSE Linux Enterprise High Performance Computing 12 SUSE Linux Enterprise Server 12 SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP4 SUSE Linux Enterprise Server 12 SP5 SUSE Linux Enterprise Server for SAP Applications 12 SUSE Linux Enterprise Server for SAP Applications 12 SP3 SUSE Linux Enterprise Server for SAP Applications 12 SP4 SUSE Linux Enterprise Server for SAP Applications 12 SP5 SUSE Package Hub for SUSE Linux Enterprise 12
| Product(s): | |
Definition Synopsis |
openSUSE Leap 42.3 is installed AND Package Information
libmbedtls9-1.3.19-21 is installed
AND libmbedtls9 is signed with openSUSE key
OR
libmbedtls9-32bit-1.3.19-21 is installed
AND libmbedtls9-32bit is signed with openSUSE key
OR
mbedtls-1.3.19-21 is installed
AND mbedtls is signed with openSUSE key
OR
mbedtls-devel-1.3.19-21 is installed
AND mbedtls-devel is signed with openSUSE key
|
Definition Synopsis |
SUSE Package Hub for SUSE Linux Enterprise 12 is installed
AND Package Information
libmbedtls9-1.3.19-11 is installed
OR libmbedtls9-32bit-1.3.19-21 is installed
OR mbedtls-1.3.19-11 is installed
OR mbedtls-devel-1.3.19-11 is installed
|
Definition Synopsis |
openSUSE Tumbleweed is installed
AND Package Information
libmbedcrypto7-2.27.0-1.2 is installed
OR libmbedcrypto7-32bit-2.27.0-1.2 is installed
OR libmbedtls13-2.27.0-1.2 is installed
OR libmbedtls13-32bit-2.27.0-1.2 is installed
OR libmbedx509-1-2.27.0-1.2 is installed
OR libmbedx509-1-32bit-2.27.0-1.2 is installed
OR mbedtls-devel-2.27.0-1.2 is installed
|
Definition Synopsis |
SUSE Package Hub for SUSE Linux Enterprise 12 is installed
AND Package Information
libmbedtls9-1.3.19-11.1 is installed
OR mbedtls-devel-1.3.19-11.1 is installed
|